Information Security Risk Advisor, IAM
Overview
You will own first-line risk management for Identity and Access Management at Fannie Mae, a cornerstone of the U.S. housing finance system. In this role, you will assess enterprise risks, evaluate controls, and provide data-driven guidance to stakeholders across the enterprise. You will partner with business and risk teams to align risk considerations with strategic objectives in a highly regulated environment. Your expertise will directly shape how the organization manages information security risk, enhancing resilience and supporting affordable housing mission.
What You'll Do8
- 1Advise on risk methods and analytical models to identify and assess IAM-related information security risks across enterprise systems.
- 2Partner with business and risk stakeholders to evaluate potential risks and quantify their impact on business objectives and regulatory compliance.
- 3Review existing processes and controls, recommending enhancements that reduce risk exposure and strengthen risk management practices.
- 4Deliver clear, actionable guidance to management on risk resolutions, control guidelines, and risk management decisions.
- 5Collaborate with cross-functional teams to communicate risk findings and support informed decision-making at all levels.
- 6Apply sound judgment to balance risk considerations with business priorities within the broader operating environment.
- 7Integrate information security and risk considerations into strategic planning and business strategy development.
- 8Drive continuous improvement by adapting risk frameworks to evolving business conditions and regulatory expectations.
Requirements9
- 16+ years of experience in risk management, information security risk, or a related discipline, with a focus on IAM.
- 2Proven track record of assessing risk, evaluating controls, and using quantitative analysis to drive risk decisions.
- 3Experience collaborating with stakeholders and delivering risk communications to support business decisions.
- 4Ability to interpret business objectives and exercise sound judgment in risk evaluation.
- 5Demonstrated curiosity and adaptability in learning and responsibly applying emerging technologies, including AI.
- 6Bachelor's degree or equivalent experience.
- 7Experience operating in a complex organizational environment with information security risk.
- 8Experience supporting or partnering with Identity and Access Management functions.
- 9Experience providing advisory guidance to business, risk, or management stakeholders in a regulated industry.
Salary Insight
$141 - $184k per year
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.
94-1687665 Bank of America, National Association
VerifiedIAM Security Admin Specialist at Bank of America (Boston)
You will own IAM advisory and escalation for internal clients, guiding access management and governance across Bank of America's global enterprise. You will partner with business and tech teams to assess and mitigate security risks, supporting Access Request Management and Access Reviews. Your work will directly strengthen the bank's security posture and align with compliance requirements. This role stands out for its high visibility, frequent senior stakeholder interaction, and focus on automation and process optimization.
The Elevance Health Companies, Inc.
VerifiedInformation Security Advisor
Lead strategic network security initiatives hybrid work model fosters collaboration while supporting work-life balance. Responsible for delivering secure transaction messaging solutions and ensuring compliance with enterprise standards.
94-1687665 Bank of America, National Association
VerifiedIAM Security Administration Specialist Bank of America
Global Information Security specialist responsible for protecting bank information systems and managing identity and access management. This individual contributor will grant logical access for hundreds of proprietary applications across diverse technology environments. The role involves ensuring appropriate access while meeting compliance requirements.
Intact Services USA LLC
VerifiedIdentity Access Management Specialist (IAM)
You own identity lifecycle operations for a global specialty insurer, supporting Active Directory, Entra ID, and SailPoint across 20+ verticals. You join a Corporate IT team of security experts, partnering with application teams and audit to reduce access risks. This hybrid role (Boston, Canton, Farmington, or Raleigh) offers direct impact on compliance and system integrity, with clear growth paths.
Freddie Mac
VerifiedTechnical Platform Operations Manager, IAM
Lead the operational stability of Freddie Mac's identity management platforms, overseeing a team of platform operations resources. This role owns day-to-day support, monitoring, incident response, and problem management for critical enterprise technologies within the IAM organization. You will partner closely with engineering, governance, and infrastructure teams to drive reliability, automation, and compliance. The role combines technical depth with leadership, requiring a focus on service maturity and operational excellence. You'll build a culture of accountability and continuous improvement, directly impacting the mission of Making Home Possible.
OneMain General Services Corporation
VerifiedCybersecurity IAM Architect - Staff Engineer
Lead design and implementation of enterprise-wide IAM and identity security architectures aligned to NIST standards. Build scalable identity solutions across cloud on-premises SaaS and hybrid environments. Define secure patterns for AI agent identities and non-human identities. Translate business requirements into secure IAM blueprints. Own IAM architecture reviews and mitigate risks across authentication authorization and privileged access. Collaborate with cross-functional teams to ensure secure deployment and provide technical guidance throughout development. Establish governance standards and drive continuous improvement of identity controls.